The Times Australia
The Times World News

.
Times Media

.

Has the cyberattack on DP World put Australia's trade at risk? Probably not ... this time

  • Written by Flavio Macau, Associate Dean - School of Business and Law, Edith Cowan University

Australians getting ready for Christmas this week had reason to believe even the best of preparations were not enough after a cyberattack hit all its major ports.

DP World, which operates container ports in Australia and the region, first detected problems last Friday so unplugged its systems to minimise the impact while it examined what had happened.

While operations resumed at the ports Monday[1], the cause is still unclear and the incident continues to be investigated.

With responsibility for about 40% of freight movement at Australian ports, and a significant 10% of global trade through its international operations, the attack disrupted the flow of goods coming from ports DP World operates.

Deliveries of import items[2] such as videogames, air-conditioners, furniture and pharmaceuticals were held up.

As well, Australian exports of goods including processed meat, dairy products and fruits, all with limited shelf life, were delayed.

Why this cyber attack is significant

While DP World seems to be recovering, the incident highlights the potential vulnerability of global networks.

Supply chains rely on fully integrated solutions, from sellers overseas to buyers in Australia, to work efficiently. Information technology is embedded into them through equipment automation and data processing. Product visibility, customs clearance and checks for biosecurity risks[3] rely on cargo information detailing where goods come from, who is responsible for them and their trading value.

With sensitive data linked to the movement of containers, it is no wonder logistics professionals recognise cybersecurity as a major threat to operations – not to mention their obligations under the Security of Critical Infrastructure Act[4].

If there is still no certainty of the specific nature of the incident with DP World, there are few likely causes.

Ransomware has been on the rise, with incidents aligned to prolific cyber-criminal gangs including REVil and more recently LockBit.

In an attack, data is usually extracted from an organisation and then rendered inaccessible to users – typically using encryption. The organisation will usually receive a ransom demand to “unlock” the data, often payable using a crypto-currency.

In recent years the trend of double-extortion has become common, where the criminals incentivise their victims to pay by threatening to release the data publicly if they refuse.

While refusal is a possibility, the nature of the disruption could mean a loss of access to critical systems and information. If data is inaccessible, operations would need to be halted, leading to even greater losses.

Recovering systems would require restoration from backups and a thorough inspection for any traces of the original infection or compromise. Finally, checks would be needed to ensure no data had been lost and to identify any missing consignment data after the previous backup had taken place.

Read more: Major cyberattack on Australian ports suggests sabotage by a 'foreign state actor'[5]

If the incident is a direct cyber-attack that infiltrated systems and stole or modified data, this would also require a complete system shutdown. Without the integrity of systems, consignment data cannot be trusted and the Australian Border Force would be unable to verify the content of shipments. There would also be issues with the collection of duties, taxes and fees.

The real risk behind this attack is what it could mean for Australia’s shipping reputation. Dean Lewins/AAP[6]

Disconnecting DP World from networks allowed the investigating team to inspect systems to look for impacted systems and to evaluate the depth of any infection. This process also needs to consider the original infection mechanism – you don’t want the systems re-infected.

The timing could have been worse

The cyberattack caused the ports operated by DP World to start filling up with containers, but it had not yet become critical.

While Black Friday, Cyber Monday and Christmas are an extra busy time for retailers, there is usually a marginal increase in movement compared to other times of the year, typically less than 10%. With around 1.4 million containers[7] to be moved in the last three months of the year, the impact of losing a few days should be minimal.

Read more: Is Australia a sitting duck for ransomware attacks? Yes, and the danger has been growing for 30 years[8]

Big retailers typically start making orders for Christmas in August, with deliveries starting as early as October. While they keep inventory in check, it is unlikely that operations work in just-in-time mode.

Especially in Australia, where the distance from major global flows, the lack of alternatives such as railroad imports and lessons learned from COVID has bred risk averse businesses that are extra cautious to avoid empty shelves.

Also, ports can quickly recover. When container volumes go up, extra labour and equipment can be organised to increase the output of a terminal. In the last three years the number of time slots used by trucks has seldom reached 90% of total availability.

DP World should quickly be able to resolve any backlogs arising from this incident.

The hidden problem behind this attack

A problem for Australia is the potential effect of the cyberattack on its reputation as a shipping destination. When port facilities fill up with containers to the point where ships are delayed, costs quickly escalate to millions of dollars.

And numbers haven’t been shiny lately.

The Maritime Waterline 69 report[9] shows ship turnaround time increased from 35 hours early in 2020 to more than 50 hours in 2022. Port congestion went from a little over 10% of ships waiting for more than two hours to over 22%. And average waiting time at anchorage went up from 17.3 hours before COVID to 126.5 hours in mid-2022.

Add the risk of cyberattacks to this and Australian ports may lose their competitiveness, with fewer companies interested in sending their ships down here - or requiring a premium price to do so.

While the DP World cyberattack is unlikely to upset Christmas, the aggregated impact such attacks could have on Australia’s reputation as an important shipping hub, must be taken seriously.

Read more https://theconversation.com/has-the-cyberattack-on-dp-world-put-australias-trade-at-risk-probably-not-this-time-217533

The Times Features

Amazon Australia and DoorDash announce two-year DashPass offer only for Prime members

New and existing Prime members in Australia can enjoy a two-year membership to DashPass for free, and gain access to AU$0 delivery fees on eligible DoorDash orders New offer co...

6 things to do if your child’s weight is beyond the ideal range – and 1 thing to avoid

One of the more significant challenges we face as parents is making sure our kids are growing at a healthy rate. To manage this, we take them for regular check-ups with our GP...

Joykids Australia Presents the Joykids Family Rave: A Weekend Adventure Like No Other

Get ready to kick off the first day of summer and the festive season with an unforgettable family adventure! Joykids Australia is excited to announce the Joykids Family Rave—an...

New study suggests weight loss drugs like Ozempic could help with knee pain. Here’s why there may be a link

The drug semaglutide, commonly known by the brand names Ozempic or Wegovy, was originally developed[1] to help people with type 2 diabetes manage their blood sugar levels. How...

Maintaining Your Pool After a Marble Interior Upgrade

After upgrading your pool with a marble interior, it’s crucial to understand that maintenance is key to preserving its elegance and longevity. You’ll want to regularly skim for d...

Labor using explanatory document to hide true powers of Misinformation Bill

The opinions and commentary of individuals could be deemed misinformation under Labor’s proposed legislation changes, according to James McComish of Victorian Bar. Appearing in...

Times Magazine

What Are the Features of Employee Scheduling Software: Key Tools for Workforce Management

Employee scheduling software has become an essential tool for modern businesses. These solutions are designed to streamline the scheduling process, ensuring that managers can efficiently allocate shifts and resources. Features such as automated sched...

NIDA welcomes all to Open Day

NIDA WELCOMES ALL TO OPEN DAY – SATURDAY 18 JUNE 2022 This weekend NIDA Open Day will welcome visitors who are curious or passionate about the arts and entertainment industries to explore NIDA’s many world-renown educational offerings. From des...

CSIRO and Space Machines partner to test Australian flexible solar cells in space

Space Machines and CSIRO partner to test Australian flexible solar cells in space  SYDNEY, Australia - Thursday 5th August 2021 - Australian in-space transportation provider Space Machines Company (SMC) and CSIRO, Australia's national scie...

Protecting businesses through the power of light

As Australia continues to grapple with an ongoing jobs crisis making sure all members are safe from disease and sick leave doesn’t overwhelm workflows. According to a study conducted by Frost and Sullivan Sick leave is already costing the national...

What is the difference between a Plumber and a Master Plumber in Victoria, Australia?

In the realm of plumbing services in Victoria, Australia, there exists a significant difference between a certified plumber and a master plumber. The distinction goes beyond a title; it delves into expertise, qualifications, and the level of skills...

All You Need to Know About the Latest in Electric Massage Chair Technology

Types of Electric Massage Chairs Electric massage chairs are becoming increasingly popular as people seek to reduce stress and relax after a long day. With so many types available, it can be difficult to decide which one is best for you. In thi...